UpdateInfo.js 2.8 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980
  1. const API = require("../../lib/API");
  2. const { BaseStdResponse } = require("../../BaseStdResponse");
  3. const db = require("../../plugin/DataBase/db");
  4. const AccessControl = require("../../lib/AccessControl");
  5. const {
  6. getUserInfo,
  7. getUserID
  8. } = require("../../plugin/WXWork/GetInfo");
  9. class UpdateInfo extends API {
  10. constructor() {
  11. super();
  12. this.setMethod("POST");
  13. this.setPath("/User/UpdateInfo");
  14. }
  15. async onRequest(req, res) {
  16. this.setAllowCORS(res);
  17. let { uuid, session, code } = req.body;
  18. if (!uuid || !session || !code) {
  19. res.json({ ...BaseStdResponse.MISSING_PARAMETER, endpoint: 7841686 });
  20. return;
  21. }
  22. // 检查 session 是否有效
  23. if (!await AccessControl.checkSession(uuid, session)) {
  24. return res.json({
  25. ...BaseStdResponse.ACCESS_DENIED,
  26. endpoint: 48153145
  27. });
  28. }
  29. try {
  30. const idRes = await getUserID(code);
  31. if (!idRes || !idRes.success) {
  32. return res.json({ ...BaseStdResponse.ERR, endpoint: 7894377, msg: `更新失败!${idRes.msg}` });
  33. }
  34. const wxid = idRes.userid;
  35. let sql = 'SELECT wxid FROM users WHERE uuid = ?';
  36. let [rows] = await db.query(sql, [uuid]);
  37. if (rows.length !== 1 || !rows[0].wxid || !rows[0].session)
  38. return res.json({ ...BaseStdResponse.ERR, endpoint: 7894188, msg: `更新失败!` });
  39. if(rows[0].wxid !== wxid)
  40. return res.json({ ...BaseStdResponse.ERR, endpoint: 7894188, msg: `更新失败!当前登录的企业微信账号与绑定的企业微信账号不一致` });
  41. const infoRes = await getUserInfo(wxid);
  42. if (!infoRes || !infoRes.success) {
  43. return res.json({ ...BaseStdResponse.ERR, endpoint: 7894198, msg: `更新失败!${infoRes.msg}` });
  44. }
  45. let { name: username, avatar } = infoRes;
  46. sql = 'UPDATE users SET username = ?, avatar = ? WHERE uuid = ?';
  47. result = await db.query(sql, [username, avatar, uuid]);
  48. if (result && result.affectedRows > 0) {
  49. return res.json({
  50. ...BaseStdResponse.OK,
  51. data: {
  52. uuid,
  53. username,
  54. wxid,
  55. avatar,
  56. session
  57. }
  58. });
  59. } else {
  60. return res.json({ ...BaseStdResponse.ERR, endpoint: 7894377, msg: '更新失败!' });
  61. }
  62. } catch (error) {
  63. return res.json({ ...BaseStdResponse.ERR, endpoint: 7894377, msg: '更新失败!' });
  64. }
  65. }
  66. }
  67. module.exports.UpdateInfo = UpdateInfo;